Rates & Engagement Pricing Guidance
We operate on transparent, fixed-scope professional fees with clearly defined technical deliverables. All estimates are provided before codebase intake without recurring hidden software subscriptions.
Advisory Fee Structures
Our fee models reflect the technical depth, binary complexity, and engineering hours required for hands-on code decompilation, network packet analysis, and remediation engineering.
Core Engagement Packages
Store Manifest Clearance
- Audit of
PrivacyInfo.xcprivacymanifest - Validation of
NSPrivacyAccessedAPITypes - Google Play Data Safety mapping
- Identification of unmanifested SDKs
- Written store submission clearance memo
Comprehensive Mobile Audit
- Complete static binary & AST decompilation
- Live dynamic proxy MITM packet inspection
- Restricted API & fingerprinting detection
- Event taxonomy sanitization roadmap
- Ready-to-merge Swift / Kotlin PRs
- Complete Privacy Manifest & store documents
- 60-minute live engineering debrief
Private Telemetry Pipeline
- Client-side asymmetric envelope encryption
- Sovereign ingestion proxy deployment
- Real-time IP & header sanitization layer
- Differential privacy cohort bucketing
- Integration with private analytical storage
- Architecture handover & documentation
Scope Estimate Factors
For custom scopes or multi-app portfolios, our advisory fees are calculated based on specific technical characteristics:
- Number of Supported Target Platforms: Single platform (iOS Swift or Android Kotlin) vs. unified dual-platform architectures or cross-platform codebases (Flutter, React Native).
- Third-Party SDK Footprint: Applications embedding 1 to 5 third-party libraries require less decompilation time than complex apps with 20+ advertising, attribution, and analytics dependencies.
- Delivery Urgency: Standard turnaround (10–15 business days) vs. expedited release blocker turnaround (5 business days).
- Backend Infrastructure Integration: Client-only code review vs. end-to-end telemetry auditing spanning client binaries and ingestion cloud endpoints.
Recurring Quarterly Advisory Retainers
For mobile engineering organizations deploying frequent bi-weekly or monthly App Store updates, we offer ongoing Quarterly Release Retainers starting at $2,400 / month. This includes:
- Continuous CI/CD manifest verification checks before release tagging.
- Rapid evaluation of new SDK version bumps or analytics tool integrations.
- Up to 15 hours of direct senior auditor consultation per month.
- Priority emergency response for unexpected App Store compliance flags.
Transparent Engagement Terms
- Detailed Written Statement of Work (SOW): Every project begins with a clear scope document itemizing files, repos, and concrete deliverables.
- Payment Milestones: Standard engagements follow a 50% retainer deposit upon project initiation and 50% upon delivery and acceptance of the final audit report.
- No Recurring Software Lock-in: We do not sell proprietary SaaS seats or monthly per-event licenses. You own all audit documentation, configurations, and remediation code unconditionally.